mirror of
https://github.com/freeipa/ansible-freeipa.git
synced 2026-06-10 10:45:55 +00:00
A new section has been added to configure firewalld automatically as the last step of the server installation. A new switch has been added to be able to turn firewalld configuration off: ipaserver_no_firewalld. It defaults to no.
42 lines
933 B
YAML
42 lines
933 B
YAML
---
|
|
# defaults file for ipaserver
|
|
|
|
### basic ###
|
|
ipaserver_no_host_dns: no
|
|
### server ###
|
|
ipaserver_setup_adtrust: no
|
|
ipaserver_setup_kra: no
|
|
ipaserver_setup_dns: no
|
|
ipaserver_no_hbac_allow: no
|
|
ipaserver_no_pkinit: no
|
|
ipaserver_no_ui_redirect: no
|
|
### ssl certificate ###
|
|
### client ###
|
|
ipaclient_mkhomedir: no
|
|
ipaclient_no_ntp: no
|
|
#ipaclient_ssh_trust_dns: no
|
|
#ipaclient_no_ssh: no
|
|
#ipaclient_no_sshd: no
|
|
#ipaclient_no_dns_sshfp: no
|
|
### certificate system ###
|
|
ipaserver_external_ca: no
|
|
### dns ###
|
|
ipaserver_allow_zone_overlap: no
|
|
ipaserver_no_reverse: no
|
|
ipaserver_auto_reverse: no
|
|
ipaserver_no_forwarders: no
|
|
ipaserver_auto_forwarders: no
|
|
ipaserver_no_dnssec_validation: no
|
|
### ad trust ###
|
|
ipaserver_enable_compat: no
|
|
ipaserver_setup_ca: yes
|
|
### firewalld ###
|
|
ipaserver_no_firewalld: no
|
|
|
|
### additional ###
|
|
ipaserver_allow_missing: [ ]
|
|
|
|
### uninstall ###
|
|
ipaserver_ignore_topology_disconnect: no
|
|
ipaserver_ignore_last_of_role: no
|